当前位置: 首页 > 图文教程 > 脚本技术 > DOS/BAT > 恶意软件\垃圾流氓通用反删除批处理文件

DOS/BAT
批处理制作照片整理器
可以生成SLEEP.EXE的延时命令的bat文件
用bat批量创建文件夹
bat批处理实现的创建10个文件夹,文件夹再包含5个空文件夹
bat延时执行命令的另一种方法
windows服务操作之删除服务 批处理实现
批处理 远程控制
使用批处理修改web打印设置笔记 适用于IE
批处理 结束麦咖啡进程的代码
cmd fsutil 命令新建空文本文件
cmd Tasklist与Tskill管理Windows系统进程
批处理 正则表达式(findstr) 整理
bat 文件 学习使用指南
for 语句从入门到精通
dos 目录跳转 cd
tree 以树形格式罗列文件
dos 内容重定向
dos if 条件判断
dos 流程跳转 goto
dos 文件复制 copy命令

DOS/BAT 中的 恶意软件\垃圾流氓通用反删除批处理文件


出处:互联网   整理: 软晨网(RuanChen.com)   发布: 2009-10-12   浏览: 73 ::
收藏到网摘: n/a

使用方法:
1关闭浏览器
2执行un3721.bat
3再执行un3721.reg
4重启电脑,基本上的垃圾都删除了
5如果还有少量,重启电脑进安全模式操作,或看.bat文件里的帮助注释,
un3721.bat
复制代码 代码如下:

rem 砍掉一切流氓,让我们静待互联网的春天 ~_~
rem 各取所需,根据自己要求修改(有的人还觉得某个流氓好就留着*_*)
rem 如果跳出选择框,选择全部卸载
rem 有些**需要在安全模式下才能卸载,有些不好卸载请看里面的帮助
rem 现在的流氓越来越超级,已经超过批处理的能力极限,只有借助一些别的软件,推荐使用http://ccollomb.free.fr/unlocker一起删除超级**
rem 砍掉3721 kao 把好多的电脑弄惨了
if exist C:\PROGRA~1\3721\Assist\asbar.dll rundll32.exe C:\PROGRA~1\3721\Assist\asbar.dll,RunSettings -uninstall
if exist %windir%\downlo~1\CnsMin.dll rundll32.exe %windir%\downlo~1\CnsMin.dll,RunSettings -uninstall
if exist %windir%\downlo~1\CnsMin.dll rundll32.exe %windir%\downlo~1\CnsMin.dll,ControlPanel
regsvr32 /u /s %windir%\downlo~1\CnsMin.dll
regsvr32 /u /s C:\PROGRA~1\3721\Assist\asbar.dll
regsvr32 /u /s C:\PROGRA~1\3721\helper.dll
regsvr32 /u /s C:\PROGRA~1\YiSou\yisou.dll
rem 砍掉yahoo猪手,把好多的电脑弄惨
regsvr32 /u /s C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yasbar.dll
regsvr32 /u /s C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yphtb.dll
regsvr32 /u /s C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yangling.dll
regsvr32 /u /s C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\YDRAGS~1.DLL
rem 新版的 猪手 根本不能选择卸载,***
if exist C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yasbar.dll rundll32 C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yasbar.dll,UnInstall
rem 彩信通 又一个超级的**产生了
rem 想办法删除 %windir%\system32\drivers\Albus.SYS 这个万恶不赦的文件,才能彻底清理这个门户
rem 推荐使用 DOS 启动电脑,找到C盘 这个万恶不赦的文件 删除
rem 或者使用 http://ccollomb.free.fr/unlocker 删除,删除后可能造成系统不稳定,重启电脑执行2个批处理,再重启
regsvr32 /u /s C:\PROGRA~1\MMSASS~1\MMSASS~1.DLL
if exist C:\PROGRA~1\MMSASS~1\mmsass~1.dll rundll32.exe C:\PROGRA~1\MMSASS~1\mmsass~1.dll,Uninstall
if exist %windir%\System32\stdup.dll rundll32.exe %windir%\System32\stdup.dll,Uninstall
regsvr32 /u /s %windir%\system32\stdup.dll
regsvr32 /u /s %windir%\system32\STDSVER.DLL
regsvr32 /u /s %windir%\system\stdup.dll
regsvr32 /u /s %windir%\system\STDSVER.DLL
del %windir%\system32\drivers\Albus.SYS /q /f
del %windir%\system32\Albus.DAT /q /f
del %windir%\system32\almms.dat /q /f
del %windir%\system32\alsmt.exe /q /f
del C:\PROGRA~1\MMSASS~1\MMSASS~1.DLL /q /f
rem internet explorer helper
regsvr32 /u /s %windir%\fonts\msshapi.dll
rem 划词 huaci 又是一个走上不归路的超级**
rem 这个**需要重启电脑,再次执行两个批处理文件操作才能被删除
C:\PROGRA~1\HuaCi\huaci\mUin.exe
C:\PROGRA~1\wsearch\mUnInstall.exe
%windir%\system32\msibm\Uninstall.exe
%windir%\system\msibm\Uninstall.exe
del %windir%\system32\drivers\abhcop.sys /q /f
del %windir%\system32\DRIVERS\hcalway.sys /q /f
rem Baidu这个**,**越来越超级,Baid* 也不例外
;rem需要安全模式,或者想办法删除 %windir%\system32\drivers\BDGuard.SYS 这个文件才能卸载这个**
if exist C:\PROGRA~1\baidu\bar\BaiduBar.dll rundll32.exe C:\PROGRA~1\baidu\bar\BaiduBar.dll,Uninstall
regsvr32 /u /s %windir%\DOWNLO~1\BDSrHook.dll
regsvr32 /u /s %windir%\DOWNLO~1\BDHelper.dll
regsvr32 /u /s %windir%\DOWNLO~1\BDPlugin.dll
regsvr32 /u /s C:\PROGRA~1\Baidu\Bar\BaiduBar.dll
regsvr32 /u /s "C:\Program Files\Common Files\Baidu\Disk Search\dsie.dll"
if exist %windir%\DOWNLO~1\BDHelper.dll rundll32.exe %windir%\DOWNLO~1\BDHelper.dll,DllRemove
del %windir%\system32\drivers\BDGuard.SYS /q /f
del %windir%\system32\BDGuard.DAT /q /f
del %windir%\system32\BDGuardS.DAT /q /f
del C:\PROGRA~1\baidu\bar\BaiduBar.dll
rem windirected 傲迅 wmpdrm.dll
rem 这个**卸载需在安全模式下进行,或终止explorer.exe,taskmgr.exe,输入法等进程只留基本进程,在CMD窗口中执行批处理可卸载
%windir%\system32\spoolsv\spoolsv.exe -uninst
regsvr32 /u /s %windir%\system32\wmpdrm.dll
del %windir%\system32\spoolsv\spoolsv.exe /q /f
rem 为了98
%windir%\system\spoolsv\spoolsv.exe -uninst
regsvr32 /u /s %windir%\system\wmpdrm.dll
del %windir%\system\spoolsv\spoolsv.exe /q /f
rem 删除QQ搜索 这个 **
regsvr32 /u /s C:\PROGRA~1\TENCENT\AddrPlus\IEHelp.dll
regsvr32 /u /s C:\PROGRA~1\TENCENT\AddrPlus\IEHelp1.dll
regsvr32 /u /s C:\PROGRA~1\TENCENT\AddrPlus\scrax.dll
regsvr32 /u /s C:\PROGRA~1\TENCENT\AddrPlus\TCtrl.dll
C:\PROGRA~1\TENCENT\Adplus\stup.exe C:\PROGRA~1\TENCENT\Adplus\SSAddr1.dll Uninstall
C:\PROGRA~1\TENCENT\Adplus\stup.exe C:\PROGRA~1\TENCENT\Adplus\SSAddr.dll Uninstall
rem 删除 DUDU 搜索条 这个 **
regsvr32 /u /s C:\PROGRA~1\DuDu\DddClient\dddiemon.dll
regsvr32 /u /s C:\PROGRA~1\DuDu\DddClient\dddmext.dll
rem 删除Accoona 这个 **
regsvr32 /u /s C:\PROGRA~1\Accoona\AToolbarCN.dll
regsvr32 /u /s C:\PROGRA~1\Accoona\atoolbar.dll
regsvr32 /u /s C:\PROGRA~1\Accoona\ASearchAssist.dll
rem 删除xBar
regsvr32 /u /s C:\PROGRA~1\xBar\xBarHelper.dll
regsvr32 /u /s %windir%\System32\xunleibho_v8.dll
rem 为了98
regsvr32 /u /s %windir%\System\xunleibho_v8.dll
rem Schedule sscli.dll
regsvr32 /u /s %windir%\System32\sscli.dll
rem 删除 henbang 很棒 **
regsvr32 /u /s C:\PROGRA~1\pcast\hbcast.dll
regsvr32 /u /s C:\PROGRA~1\HBClient\hapast.dll
regsvr32 /s /u C:\PROGRA~1\yehoo\hbyehoo.dll
regsvr32 /s /u C:\PROGRA~1\yehoo\tbyehoo.dll
regsvr32 /s /u %windir%\DOWNLO~1\HTHelper.dll
rem 库站 多多QQ表情 9991.com51.com 超级**
regsvr32 /u /s C:\PROGRA~1\CoolWebsite\QuickLink.dll
"C:\Program Files\Common Files\update\update.exe" -kill1
C:\PROGRA~1\CoolWebsite\uninst.exe
rem 最好安全模式操作,或者需要终止一个rundll32.exe %windir%\system32\wbem\IRJIT.dll 的进程
del %windir%\system32\wbem\IRJIT.dll /q /f
rem cfsbho.dll
regsvr32 /u /s %windir%\system32\msibm\cfsbho.dll
rem 为了98
regsvr32 /u /s %windir%\system\msibm\cfsbho.dll
rem 划词搜索 DeskAdTop\deskipn.dll
regsvr32 /u /s C:\PROGRA~1\DESKAD~1\deskipn.dll
C:\PROGRA~1\DESKAD~1\DeskUn.exe
rem 删除桌面传媒 IE-BAR 这个**
MsiExec.exe /I{FE41A479-E056-40A5-982C-D149B5D6712D}
regsvr32 /u /s "C:\Program Files\Desktop Media\Cast\dmbar.dll"
regsvr32 /u /s "C:\Program Files\Common Files\IE-Bar\dmbar.dll"
"C:\Program Files\Common Files\IE-Bar\uninstall.exe"
regsvr32 /u /s %windir%\DOWNLO~1\lund.dll
regsvr32 /u /s "C:\Program Files\IE-BAR\Cast\dmbar.dll"
rem 这个**可能不能被删除,请先到进程管理里删除VIPTray.exe这个进程
regsvr32 /u /s %windir%\system32\IEHelper.dll
regsvr32 /u /s %windir%\system32\WinDefendor.dll
rem 这个名字会不停的变化 **
regsvr32 /u /s %windir%\system\cb7o2470.dll
rem 为了98
regsvr32 /u /s %windir%\system\IEHelper.dll
regsvr32 /u /s %windir%\system\WinDefendor.dll
MsiExec.exe /I{3D554C17-ED16-448A-B3CE-6FBC51FFB705}
rem 中搜寻址 这个 **
regsvr32 /u /s "C:\Program Files\SearchNet\SNHpr.dll"
"C:\Program Files\SearchNet\UnInstall.exe"
rem 百狗**
C:\PROGRA~1\baigoo\mtsrv.exe -UnregServer
regsvr32 /u /s C:\PROGRA~1\baigoo\bgook.dll
regsvr32 /u /s C:\PROGRA~1\baigoo\bgooex.dll
regsvr32 /u /s C:\PROGRA~1\baigoo\BGooHK.dll
regsvr32 /u /s C:\PROGRA~1\baigoo\BGooBHO.dll
C:\PROGRA~1\baigoo\uninst.exe
rem 搜狗
C:\PROGRA~1\P4P\Uninstall.exe
regsvr32 /u /s "C:\Program Files\ScanToolbar\ScanBar.dll"
C:\PROGRA~1\ScanToolbar\uninst.exe
%windir%\system32\unsocul.exe
rem 为了98
%windir%\system\unsocul.exe
rem 点点通
if exist %windir%\DOWNLO~1\DDTINIT.DLL rundll32.exe %windir%\DOWNLO~1\DDTINIT.DLL,Uninstall
rem Radiate Advertising
%windir%\system32\MSIPCSV.EXE -uninstall -all
rem 为了98
%windir%\system\MSIPCSV.EXE -uninstall -all
rem RoomSetUPcd ads
if exist %windir%\system32\cd_clint.dll rundll32 %windir%\system32\cd_clint.dll,ServiceRunDll u_281
rem 为了98
if exist %windir%\system\cd_clint.dll rundll32 %windir%\system\cd_clint.dll,ServiceRunDll u_281
rem 一个什么五笔
regsvr32 /u /s C:\PROGRA~1\COMMON~1\Wnwb\wnwbio.dll
rem wmicsmgr.dll
regsvr32 /u /s %windir%\system32\wmicsmgr.dll
regsvr32 /u /s %windir%\system\wmicsmgr.dll
rem 一个广告Navihelper.dll
regsvr32 /u /s %windir%\system32\Navihelper.dll
regsvr32 /u /s %windir%\system\Navihelper.dll
del %windir%\system32\host.dat /q /f
rem 好像是一个木马
regsvr32 /u /s %windir%\system32\RAdminl.dll
rem 为了98
regsvr32 /u /s %windir%\system\RAdminl.dll
rem 跳跳塘
rem 这个**可能不能被删除,请先到进程管理里终止webacc.exe这个进程
%windir%\system32\wbauninstall.exe
regsvr32 /u /s %windir%\system32\webacc.dll
regsvr32 /u /s %windir%\Downlo~1\c8s.dll
rem 为了98
%windir%\system\wbauninstall.exe
regsvr32 /u /s %windir%\system\webacc.dll
rem 好像什么便民
regsvr32 /u /s C:\PROGRA~1\xm\tbu3\xm.dll
rem 易趣购物
del %windir%\ebaylink.ico /q /f
rem msdc32.dll 一个木马 需要安全模式才能清除
del C:\PROGRA~1\COMMON~1\system\msdc32.dll /q /f
del %windir%\ .exe /q /f /as /ar /ah
rem YOK拦截助手
regsvr32 /u /s C:\PROGRA~1\YOK.com\BlockAdr\yokhad.dll
regsvr32 /u /s C:\PROGRA~1\YOK.com\SUPERS~1\YOK_SuperSearch.dll
regsvr32 /u /s %windir%\system32\Navsmall.dll
regsvr32 /u /s %windir%\system\Navsmall.dll
C:\PROGRA~1\YOK.com\BlockAdr\Uninst.exe
rem 不知是什么流氓
regsvr32 /u /s %windir%\DOWNLO~1\vevnli.dll
rem ChajianHelper
regsvr32 /u /s %windir%\system32\SYSREA~1.DLL
regsvr32 /u /s %windir%\system\SYSREA~1.DLL
rem 不知是什么流氓
regsvr32 /u /s %windir%\system32\HelperService.dll
regsvr32 /u /s %windir%\system\HelperService.dll
regsvr32 /u /s %windir%\system32\mshlp.dll
regsvr32 /u /s %windir%\system\mshlp.dll
rem MyWebSearch 这个**,这个**产生的目录根本不定
if exist rundll32 C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsbar.dll rundll32 C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsbar.dll,O
rem 开心运程速递
regsvr32 /u /s %windir%\system32\obwbkya.dll
rem 为了98
regsvr32 /u /s %windir%\system\obwbkya.dll
regsvr32 /u /s %windir%\system32\shwasobj.dll
rem 为了98
regsvr32 /u /s %windir%\system\shwasobj.dll
C:\PROGRA~1\SDAstro\Uninst.exe
rem 这个文件名会不停的变化
regsvr32 /u /s C:\Docume~1\AllUse~1\Applic~1\Microsoft\IEHelper\IEHelper200631_8913.dll
rem Luobooshow
regsvr32 /u /s %windir%\system32\WinSC.dll
regsvr32 /u /s %windir%\system\WinSC.dll
rem caishow
regsvr32 /u /s "C:\Program Files\CaiShow Tech\CaiShow\BrowerHelper.dll"
regsvr32 /u /s %windir%\system32\wuwebex.dll
regsvr32 /u /s %windir%\system\wuwebex.dll
rem 酷桌面
regsvr32 /u /s %windir%\system32\CoolBho.dll
regsvr32 /u /s %windir%\system\CoolBho.dll
rem 青娱
regsvr32 /u /s %windir%\system\QYLWMP~1.OCX
regsvr32 /u /s %windir%\system\QYLRMP~1.OCX
regsvr32 /u /s %windir%\system\contextmenu.dll
regsvr32 /u /s C:\PROGRA~1\Qyule\\QYULEP~1.OCX
regsvr32 /u /s C:\PROGRA~1\Qyule\\dvfilter.ax
C:\PROGRA~1\Qyule\unins000.exe
rem NB46.com smflash.ocx 好像需要安全模式
regsvr32 /u /s "C:\Program Files\nb46.com\NB46Toolbar.dll"
regsvr32 /u /s %windir%\system32\smflash.ocx
regsvr32 /u /s %windir%\system\smflash.ocx
rem kuaiso toolsbar
regsvr32 /u /s "C:\Program Files\Micrsoft SearchBar\SearchBar.dll"
rem bbmao
regsvr32 /u /s "C:\Program Files\bbmao Toolbar\bbmao_tb_v1_0.dll"

rem 删除CDN 这个 **
regsvr32 /u /s C:\PROGRA~1\CNNIC\Cdn\wmhlpr.dll
regsvr32 /u /s C:\PROGRA~1\CNNIC\Cdn\iesrch.dll
regsvr32 /u /s C:\PROGRA~1\CNNIC\Cdn\cdniehlp.dll
regsvr32 /u /s C:\PROGRA~1\CNNIC\Cdn\cdniehlp.dll
regsvr32 /u /s C:\PROGRA~1\CNNIC\Cdn\cdnforie.dll
regsvr32 /u /s %windir%\system32\cdnns.dll
regsvr32 /u /s %windir%\System32\jklpif.dll
rem 为了98
regsvr32 /u /s %windir%\system\cdnns.dll
regsvr32 /u /s %windir%\System\jklpif.dll
rem CNNIC的反安装这里可能不好完全卸载,请单独到控制面板里"添加/删除"里卸载,或找到C:\PROGRA~1\CNNIC\Cdn\cdnunins.exe单独执行
C:\PROGRA~1\CNNIC\Cdn\cdnunins.exe

un3721.reg
复制代码 代码如下:

REGEDIT4
;rem 砍掉一切流氓,让我们静待互联网的春天 ~_~
;rem 各取所需,根据自己要求修改(有的人还觉得某个流氓好就留着*_*)
;rem 如果跳出选择框,选择全部卸载
;rem 有些**需要在安全模式下才能卸载,有些不好卸载请看里面的帮助
;rem 现在的流氓越来越超级,已经超过批处理的能力极限,只有借助一些别的软件,推荐使用http://ccollomb.free.fr/unlocker一起删除超级**
;rem 砍掉3721 kao 把好多的电脑弄惨了
;rem 砍掉yahoo猪手,把好多的电脑弄惨
;rem 新版的 猪手 根本不能选择卸载,***,这里可以被卸载的
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\*\shellex\ContextMenuHandlers\粉碎文件]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.zschk]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Angling.AntiFish]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Angling.AntiFish.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Assist.EasyAssist]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AutoLive.Live]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AutoLive.Live.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{141A5E19-BDCB-4E27-A3D7-9E16503BC05B}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ADKiller.ADKillerObj]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ADKiller.ADKillerObj.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B0E7716-898E-48CC-9690-4E338E8DE1D3}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{38928D50-8A48-44C2-945F-D2F23F771410}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7CA83CF1-3AEA-42D0-A4E3-1594FC6E48B2}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9EB2B422-C9EE-46C4-A471-1E79C7517B1D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ABEC6103-F6AC-43A3-834F-FB03FBA339A2}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B83FC273-3522-4CC6-92EC-75CC86678DA4}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BB936323-19FA-4521-BA29-ECA6A121BC78}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D157330A-9EF3-49F8-9A67-4141AC41ADD4}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CnsHelper.CH]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CnsMinHK.CnsHook]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CnsMinHK.CnsHook.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CoolBar.CoolBarObj]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CoolBar.CoolBarObj.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\FFlash.FlashObjectInterface]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\FFlash.FlashObjectInterface.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{172862CD-9D35-40E7-BAF2-BA7ECF043B9C}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1BB0ABBE-2D95-4847-B9D8-6F90DE3714C1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1D10645F-A553-426E-9923-C3ABF846EA41}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{48E688C8-609F-4B08-944E-3C7FAB99CD08}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{7436DB12-1A7A-4D87-A4E0-713EC9D86050}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{924F5B3A-7A27-484A-B873-E855C9708667}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{BE08F6BC-C3E6-4149-BEB1-CB449E1B372E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{C3A9F7F8-8862-496A-B8A4-25D4140B7DBC}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D27CDB6D-AE6D-11CF-96B8-444553540000}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{19069804-2CF0-4357-B696-BA6E9AAD99EF}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{4158DB95-DE71-41FF-BEA1-2C3D1C679DF1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{7354662F-CAA3-448B-BC01-04F55A2DCA35}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{95A9BBCA-4EC1-4A9E-91AA-1D9633C38D0E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{A5ADEAE7-A8B4-4F94-9128-BF8D8DB5E927}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{AAB6BCE3-1DF6-4930-9B14-9CA79DC8C267}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{D4839331-534D-4D0C-875F-D25AF6A10CCC}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{F97E75A4-0103-4F27-A752-327B600B1130}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ZsMod.AxObj]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ZsMod.AxObj.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{17F1C8E8-B99B-4D85-927B-A0EE7290455A}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{19CE93DE-8334-42C6-B2CA-BFE3DF5196A3}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1C2EDD19-C2D5-4234-9339-785E5885B84D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2283BB66-A15D-4AC8-BA72-9C8C9F5A1691}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{33BBE430-0E42-4F12-B075-8D21ACB10DCB}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{38928D50-8A48-44C2-945F-D2F23F771410}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{406F94F0-504F-4a40-8DFD-58B0666ABEBD}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4558FA8B-C683-4BD9-BB43-90E086A4C113}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4B57D035-8A78-4E5A-82DF-FD5DEE51E578}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4EBCAF82-5BE7-4FC5-938F-9CD284587139}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4F2C1A0A-622E-4D23-9870-6FB6D109C170}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{55C32FB0-B5DE-432D-B143-7CA84EA3F888}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{57421194-58FB-49AE-9B4F-FD48869B9AD4}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{59E99ADD-E926-40e8-BD6F-1532124A4AAA}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62EED7C6-9F02-42f9-B634-98E2899E147B}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6940DBA6-CEBB-46B6-8058-CB358295BCCC}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A915D6B-B187-4724-B753-F338D8A157C2}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7992E7F8-5D81-4EAA-9E5F-6211215946E4}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8FC688E0-3F7D-4517-8C30-459C4211A8A1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9C3C2C08-C494-4F52-AE94-85156A447D43}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A14600F7-E2AE-482D-9AFC-99CD4544DB4F}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AB9BF611-F86A-43C5-A467-625E22D7A309}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AF53D70E-29DF-443A-92AA-9C314AF5871E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B56FF3E8-B0C2-45C9-AF3F-8E6C5F010B9F}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B83FC273-3522-4CC6-92EC-75CC86678DA4}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C14F7681-33D8-11D3-A09B-00500402F30B}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C459AB59-28A5-43A3-9D22-753F4C9586E6}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CA1E3092-BC38-4FFC-AEAE-C8E8EEC70CA1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CEA8FC9F-3D3F-4486-B9DF-ADCEE875FFB2}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D7C53E1A-7045-473C-933D-8228D1708947}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E3128A3A-C191-4149-8631-C632C8FC9919}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EF4BA0B4-A877-45B3-B0BC-AD7A3CC22811}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F40FED3D-F813-42F4-A1AE-8E1D60472BF0}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FA6DA3A4-87E4-4A45-9FD6-ED26089B7104}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FE3ECAE7-0A37-4506-8A7D-3CC9A04D2CA8}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FF0E5DF6-2375-4499-A97F-74954384D8D2}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CnsHelper.CH]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CnsHelper.CH.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CnsHelper.CH]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{02DB2793-F3F8-42AB-9B03-19B25485BE29}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{924F5B3A-7A27-484A-B873-E855C9708667}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{BE08F6BC-C3E6-4149-BEB1-CB449E1B372E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{C43273A6-9085-41CF-8A84-3881363A7EB9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D27CDB6D-AE6D-11CF-96B8-444553540000}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{DD011DB1-0EAF-4D05-8650-BB99208C76B0}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{DF692509-D9EF-48A0-9CD0-3AA5B81F6F68}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\jpegfile\shellex\ContextMenuHandlers\Yahoo!Photo]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ToolBand.BandButton]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ToolBand.BandButton.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ToolBand.BandReg]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ToolBand.BandReg.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ToolBand.ObjectBar]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ToolBand.ObjectBar.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{04D0FD01-C8FA-413B-AD83-519D10B93324}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{22242729-9EE0-4060-988D-BE2A9EFD8CD0}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{4158DB95-DE71-41FF-BEA1-2C3D1C679DF1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{51C76AB9-D876-46A8-A20D-F606EDDD69ED}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{5517390C-60D1-4FFA-BD4C-81F8278AF29E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{58E9B715-3C97-4048-9CBE-A708E0AEB29E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{7CFDAB57-D8CD-4465-BD15-48CFFCEE3DF2}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{8417D3DB-4004-4259-952D-A6EC64A1800E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{95E822B6-6B10-4E86-9603-6CECB6135867}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{AAB6BCE3-1DF6-4930-9B14-9CA79DC8C267}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{AE9A3F59-E2D2-4EE8-A279-F2B6AF336B8E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{CF67E74A-3C62-4867-9DFA-DD2374003333}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{E816B7F9-96AB-4D4D-8DA4-B9D124959DA5}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{F8CC28B5-4042-4054-99CB-8855EFD0FAB7}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YahooAssistBar.AsNoAdObj]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YahooAssistBar.AsNoAdObj.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YahooAssistBar.DragSearch]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YahooAssistBar.DragSearch.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YahooAssistBar.PhotoTb]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YahooAssistBar.PhotoTb.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YALive.Live]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YALive.Live.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YAssist.EasyAssist]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YAssist.EasyAssist.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YRss.ExpBand]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YRss.ExpBand.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\zschkfile]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AdvancedOptions\!CNS]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{00000000-0000-0001-0001-596BAEDD1289}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{507F9113-CD77-4866-BA92-0E86DA3D0B97}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{59BC54A2-56B3-44a0-93E5-432D58746E26}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{5D73EE86-05F1-49ed-B850-E423120EC338}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{E5D12C4E-7B4F-11D3-B5C9-0050045C3C96}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{ECF2E268-F28C-48d2-9AB7-8F69C11CCB71}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{FD00D911-7529-4084-9946-A29F1BDF4FE5}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Search]
"SearchAssistant"=-
"CustomizeSearch"=-
"OCustomizeSearch"=-
"OSearchAssistant"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
"{33BBE430-0E42-4F12-B075-8D21ACB10DCB}"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{406F94F0-504F-4A40-8DFD-58B0666ABEBD}"=-
"{BB936323-19FA-4521-BA29-ECA6A121BC78}"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{33BBE430-0E42-4f12-B075-8D21ACB10DCB}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{38928D50-8A48-44C2-945F-D2F23F771410}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{62EED7C6-9F02-42f9-B634-98E2899E147B}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BB936323-19FA-4521-BA29-ECA6A121BC78}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D157330A-9EF3-49F8-9A67-4141AC41ADD4}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FE3ECAE7-0A37-4506-8A7D-3CC9A04D2CA8}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{D157330A-9EF3-49F8-9A67-4141AC41ADD4}"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"helper.dll"=-
"CnsMin"=-
"assistse"=-
"hbpassport"=-
"YLive.exe"=-
"yassistse"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"CnsAssecblk"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\CnsMin]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1B0E7716-898E-48cc-9690-4E338E8DE1D3}]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_CNSMINKP]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\CnsMinKP]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\!搜一搜]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\添加到雅虎订阅(&Y)]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\雅虎搜索]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"CNSMenu"=-
"CNSHint"=-
"CNSReset"=-
"CNSEnable"=-
"CNSList"=-
"CNSAutoUpdate"=-
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{406F94F0-504F-4a40-8DFD-58B0666ABEBD}"=-
"{BB936323-19FA-4521-BA29-ECA6A121BC78}"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\3721]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Yahoo]
[-HKEY_CURRENT_USER\Software\3721]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Explorer Bars\{19CE93DE-8334-42C6-B2CA-BFE3DF5196A3}]
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{57421194-58FB-49AE-9B4F-FD48869B9AD4}]
;rem 彩信通 又一个超级的**产生了
;rem 想办法删除 %windir%\system32\drivers\Albus.SYS 这个万恶不赦的文件,推荐用http://ccollomb.free.fr/unlocker
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_ALBUS]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Albus]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Albus]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_ALBUS]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Albus]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Ad.AxObj]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Ad.AxObj.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6671A431-5C3D-463d-A7CF-5587F9B7E191}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6671A432-5C3D-463d-A7CF-5587F9B7E191}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A512BF7-EC78-4e8d-9841-6C02E8FA9838}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IEHelper.WinHelper]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IEHelper.WinHelper.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{74289A79-E652-4A57-A6B9-EE64AD532A8D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{AB45CE36-C280-4525-BCF9-1BD01D3E4B57}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D922591D-7893-412B-B801-C3B2F31BE4C9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MMSBho.MMSAssist]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MMSBho.MMSAssist.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MMSBho.MMSAssistMenu]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MMSBho.MMSAssistMenu.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{077525AC-C681-4139-8C3E-B582BDD375C7}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{22F87D75-7DD1-4545-94B3-CA80C0F462C6}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{964DDEFF-B16C-4113-8FF7-8E83B53C8ED8}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{6671A433-5C3D-463d-A7CF-5587F9B7E191}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6671A431-5C3D-463d-A7CF-5587F9B7E191}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\mmsassist]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Stdup]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\>>彩信发送<<]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"alsmt.exe"=-
;rem internet explorer helper msshapi.dll
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{02C9B9AB-6372-46C5-B356-773FAF3B6B1E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02C9B9AB-6372-46C5-B356-773FAF3B6B1E}]
;删除划词 huaci 又是一个走上不归路的超级**
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{594BE7B2-23B0-4FAE-A2B9-0C21CC1417CE}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{4E1ACE40-F681-4CC4-A7C0-AD1E6C9AD86F}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SearchM.Search]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SearchM.Search.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{FD536575-73F7-42A3-9E9F-11688F1A006A}]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_ABHCOP]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_HCALWAY]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\abhcop]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\hcalway]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_ABHCOP]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_HCALWAY]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\abhcop]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\hcalway]
[-HKEY_CURRENT_USER\Software\Pig Move Search]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MoveSearch"=-
;CDN这个**
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Cdn.CdnObj]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Cdn.CdnObj.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CdnForIE.IEHlprObj]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CdnForIE.IEHlprObj.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5C3853CF-C7E0-4946-B3FA-1ABDB6F48108}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8CDCBBA0-4BE1-4199-8389-1B19ED41D3E8}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9A578C98-3C2F-4630-890B-FC04196EF420}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F5824EFB-728A-4726-A5A5-85A68B20EDC3}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{5C3853CD-C7E0-4946-B3FA-1ABDB6F48108}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{951A869A-1003-4897-948F-D55E570871DB}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9C991F1E-D6FE-4B74-B6EC-763FF528FAE1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{F248EBAB-D894-4682-80E3-F48AABF4B12D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{5C3853CE-C7E0-4946-B3FA-1ABDB6F48108}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{C24A5A5C-0874-4386-85C7-E669F90997A9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{DF571585-070D-4EB1-8B0E-99023F934FD4}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMHlpr.WMEvtSink]
[-HKEY_LOCAL_MACHINE\SOFTWARE\CNNIC]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AdvancedOptions\CDNCLIENT]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{5C3853CF-C7E0-4946-B3FA-1ABDB6F48108}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C3853CF-C7E0-4946-B3FA-1ABDB6F48108}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F5824EFB-728A-4726-A5A5-85A68B20EDC3}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{35980F6E-A137-4E50-953D-813BB8556899}]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\cdnprot]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\cdntran]
[-HKEY_CURRENT_USER\Software\CNNIC]
[-HKEY_CLASSES_ROOT\CLSID\{EED92A43-CFCE-4548-BD73-B0A405470ED5}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CdnCtr"=-
"renewup"=-
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Extensions\CmdMapping]
"{5C3853CF-C7E0-4946-B3FA-1ABDB6F48108}"=-
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{EED92A43-CFCE-4548-BD73-B0A405470ED5}"=-
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\访问通用网址]
;去除stdup.dll这个**
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\StdService]
;rem Baidu这个** 越来越狠,Baid* 也不例外
;rem需要安全模式或者想办法删除 %windir%\system32\drivers\BDGuard.SYS 这个文件,才能卸载
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiduBar.Baidu]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiduBar.Baidu.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiduBar.Tool]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiduBar.Tool.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiduBarEx.BandIE]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiduBarEx.BandIE.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiduBarEx.DropTarget]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiduBarEx.DropTarget.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{77FEF28E-EB96-44FF-B511-3185DEA48697}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C76C055-ED6E-4535-A70F-CD476E727F67}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A7F05EE4-0426-454F-8013-C41E3596E9E9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B580CF65-E151-49C3-B73F-70B13FCA8E86}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FE14F22E-BE14-4F08-A80F-F27BC3A67B2D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{464C8A26-31E9-411C-9583-5B858E631DCC}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{89FDCC4B-8D91-49B0-81A6-18BCFF582735}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{96249369-D3DC-4AE6-8A3B-E7109D46E98D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{A294F8EB-86D9-4C4A-8B3E-909253761C64}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MimeFilter.AdFilter]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{6AFC2761-1253-427C-9A56-385B4609BE1D}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{B580CF65-E151-49C3-B73F-70B13FCA8E86}"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{77FEF28E-EB96-44FF-B511-3185DEA48697}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Baidu]
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B580CF65-E151-49C3-B73F-70B13FCA8E86}]
[-HKEY_CURRENT_USER\Software\Baidu]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\百度--网页搜索]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\百度-搜索MP3]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\百度-搜索图片]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\百度-搜索新闻]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\百度-搜索歌词]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\百度-搜索网页]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\百度-搜索贴吧]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\百度-词典搜索]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"BIE"=-
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"BaiduDS"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_BDGUARD]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\BdGuard]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BDGUARD]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\BdGuard]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BDGUARD]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BdGuard]
;删除 SSAddr.dll Tencent地址搜索栏
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0C7C23EF-A848-485B-873C-0ED954731014}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{90B1ECB2-FC3B-49AE-A6BD-F5F11BF5C4AD}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A57E074F-56D8-4A33-8112-AAC9693AA909}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DB8B2393-7A6C-4C76-88CE-6B1F6FF6FFE9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{B1A7C2CF-BF40-4597-8142-7615D74D0CC3}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AdvancedOptions\TBH]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{c95fe080-8f5d-11d2-a20b-00aa003c157b}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{DEDEB80D-FA35-45d9-9460-4983E5A8AFE6}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0C7C23EF-A848-485B-873C-0ED954731014}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
"{DB8B2393-7A6C-4C76-88CE-6B1F6FF6FFE9}"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\UrlSearchHooks]
"{DB8B2393-7A6C-4C76-88CE-6B1F6FF6FFE9}"=-
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{DB8B2393-7A6C-4C76-88CE-6B1F6FF6FFE9}"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AddrPlus3"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Tencent\TBH]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\上传到QQ网络硬盘]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\添加到QQ自定义面板]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\添加到QQ表情]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\用QQ彩信发送该图片]
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0C7C23EF-A848-485B-873C-0ED954731014}]
;删除QQIEHelper.dll
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{54EBD53A-9BC1-480B-966A-843A333CA162}]
;删除病毒 IRJIT.DLL 库站 多多QQ表情 **
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D1BB7CF4-4463-4e91-88D7-ECC3CE0A13B7}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{0083DE51-EB2E-4521-A95C-735D8E563373}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\QuickButton.QuickBtn]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\sss1.sss2.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{933DB9D6-9447-4EFE-ABA2-EAF3B309B44C}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{1D901067-2529-4A9B-9B6B-7A1DB3A44CB5}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D1BB7CF4-4463-4e91-88D7-ECC3CE0A13B7}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Update"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\BNESS]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Eventlog\Application\BNESS]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BNESS]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\BNESS]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Lamp]
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D1BB7CF4-4463-4E91-88D7-ECC3CE0A13B7}]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Universal Disk Manager]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MOBILL]
;删除Kugoo
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A9930D97-9CF0-42A0-A10D-4F28836579D5}]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\使用KuGoo3下载(&K)]
;删除网络这只蠢诸
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"PigUpdate"=-
;rem 删除 henbang 很棒 **
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8AB6C00E-A068-44E9-953F-1BCFEEA2BB6A}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{21DAD172-D8C3-40CA-B7D3-E28AE7A5DB22}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8AB6C00E-A068-44E9-953F-1BCFEEA2BB6A}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BE0B5843-553A-48C2-9A42-258A1D791AFC}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{7C7E302E-B015-4E6E-A761-C28D78F3BC5A}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9AED6826-A68C-4AA0-A370-DE54C0D40788}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{AAC356CF-178B-4612-B1DB-EE153846BF58}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\HBHelper.HBActivex]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\HBHelper.HBActivex.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\RichMedia.BhoObject]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\RichMedia.BhoObject.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{B6773538-228E-4D2F-9599-70DD9BBD2CB0}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B6773538-228E-4D2F-9599-70DD9BBD2CB0}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{BC8F8692-D345-44E0-93FF-EFB1BA6AA962}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{9660E66E-AF14-4946-8249-1A640BBABFCC}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\HAPSpy.HAPClientSpy]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\HAPSpy.HAPClientSpy.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{21DAD172-D8C3-40CA-B7D3-E28AE7A5DB22}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BE0B5843-553A-48C2-9A42-258A1D791AFC}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\RichMedia]
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{21DAD172-D8C3-40CA-B7D3-E28AE7A5DB22}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"hdp"=-
"hbpassport"=-
"RichMedia"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"mscfs"=-
"Iehelper"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1A199C20-DE2B-4838-AE3F-B5257ECE2B7E}]
;rem 搜狗
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.$p4p$]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\autolink.AutoLinkBHO]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\autolink.AutoLinkBHO.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance\{238D0F23-5DC9-45A6-9BE2-666160C324DD}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance\{765035B3-5944-4A94-806B-20EE3415F26F}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance\{941A4793-A705-4312-8DFC-C11CA05F397E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance\{E21BE468-5C18-43EB-B0CC-DB93A847D769}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance\{F1CDA468-8A08-449F-9FB8-461C3DED0E03}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{08B13A8E-EB71-4421-B417-4EC0995D5BFC}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0CA51D02-7739-43EA-8D9A-1E8AD4327B03}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{238D0F23-5DC9-45A6-9BE2-666160C324DD}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5AA23B9D-99C0-4A41-A25D-58E806766680}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{765035B3-5944-4A94-806B-20EE3415F26F}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7FD094E7-C8B9-40BD-9F80-F20A7194D2E6}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{81B9A3D6-D79F-403E-939B-4F2BE8FD2A34}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8755CE6E-0BF7-4441-8751-FB728941B0B4}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8AB8528F-AC8B-416D-9B84-92D97729C195}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{941A4793-A705-4312-8DFC-C11CA05F397E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ACBF9EB9-48C5-4226-9967-2E3247A04510}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BAB1AC41-6FF7-4F2E-A04E-5C592CCFEA7D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D977D6A9-BE13-496D-9BE4-175DFAC12628}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DBBB7978-AF21-4EF4-9AD1-B2F4BC75696C}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DEEE7FE9-3E06-43EE-B04D-18866CD0AD9C}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E03667BC-5EDA-4FD8-992C-ED73265AFAA0}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E21BE468-5C18-43EB-B0CC-DB93A847D769}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F1CDA468-8A08-449F-9FB8-461C3DED0E03}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F20A9999-11DC-4071-87A9-35191DFDDAA6}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F4FB516E-8F16-44FD-AB1D-260C32B7CF9A}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CompLoader.Loader]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Media Type\{e436eb83-524f-11ce-9f53-0020af0ba770}\{57428EC6-C2B2-44A2-AA9C-28F0B6A5C48E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SgSearchHook.SgUrlSearHook]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SoDAIEHelper.Catch]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\sogoutb.Detector]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Toolbar.BHOObj]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{8755CE6E-0BF7-4441-8751-FB728941B0B4}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0CA51D02-7739-43EA-8D9A-1E8AD4327B03}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Sohu R&D]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\P4P Service]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\P4P Service]
[-HKEY_CURRENT_USER\Software\Sohu R&D]
;
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\使用彩信超级自写发送到手机]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\使用新浪下载助手下载]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\发送图片到手机(&M)]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\收藏此页到新浪ViVi]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\新浪搜索]
;中搜寻址
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2A0176FE-008B-4706-90F5-BBA532A49731}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D1AFED83-9133-4660-8C8F-DAF1B4A3D5A8}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{E8D3778F-47D3-4F1F-9245-3D46856936E4}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SNHpr.CSNHpr]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SNHpr.CSNHpr.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2A0176FE-008B-4706-90F5-BBA532A49731}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\SearchNet]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_ANFAD]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_FAD]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_JMEDIASERVICE]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Anfad]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Eventlog\Application\Remote Log]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\FAD]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\JMediaService]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Remote Log]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_ANFAD]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_FAD]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_JMEDIASERVICE]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Anfad]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Remote Log]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\FAD]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\JMediaService]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Remote Log]
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{6A512BF7-EC78-4E8D-9841-6C02E8FA9838}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SearchNet_Up"=-
;rem 好像是开心运程 这个**
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SDAgentService]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MicrosoftRedirectionProgram"=-
"res"=-
;rem 易趣购物
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{EE60714F-AC17-427e-861A-FD60CBDF119A}]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Extensions\CmdMapping]
"{EE60714F-AC17-427e-861A-FD60CBDF119A}"=-
;rem msdc32.dll 一个木马 需要安全模式才能清除
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run]
"ip_sec"=-
;rem 一个广告Navihelper.dll
[-HKEY_CURRENT_USER\AppID\NaviHelper.DLL]
[-HKEY_CURRENT_USER\NaviHelper.NaviHelperObj]
[-HKEY_CURRENT_USER\NaviHelper.NaviHelperObj.1]
[-HKEY_CURRENT_USER\CLSID\{3E422F49-1566-40D3-B43D-077EF739AC32}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3E422F49-1566-40D3-B43D-077EF739AC32}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"supdate2.dll"=-
[-HKEY_CLASSES_ROOT\Update2.Update2]
[-HKEY_CLASSES_ROOT\Update2.Update2.1]
[-HKEY_CLASSES_ROOT\CLSID\{ECF9C696-8018-41B4-8DAD-CFD1C732DC61}]
[-HKEY_CLASSES_ROOT\TypeLib\{752C3608-0BD6-4035-83D5-6CE383AED6B4}]
[-HKEY_CLASSES_ROOT\Interface\{C6AAD6FD-08D3-47F7-A8A2-1D7EF923DAD1}]
;rem 跳跳塘 这个**
;rem 这个**可能不能被删除,请先到进程管理里删除webacc.exe这个进程
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"webacc"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"webacc"=-
"mu071c"=-
;rem baigoo 这个** BG
[-HKEY_LOCAL_MACHINE\SOFTWARE\baigoo]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{40EF7CCC-71FE-4615-A0CA-D373F8C2AC88}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\MtSrv.EXE]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiGooEx.Update]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiGooEx.Update.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiGooPM.BHOHelper]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiGooPM.BHOHelper.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiGooPM.BrowserObject]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiGooPM.BrowserObject.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BGooBHO.Status]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BGooBHO.Status.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BGooSrv.HtmlPaser]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7905958A-18C2-4139-9957-AE6F2B754818}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7BDAF75A-0D6F-4F50-AFE9-333D08DF4005}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{808EAF87-61B8-4EEA-8B85-27480D1BDBEE}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8816EA7A-5944-4277-B98E-2C0A46FB36E9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{4A8976FE-144E-4742-8E49-D6CD3B140FD1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{690E010B-042A-4973-87A8-485DEB8BDF68}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{9DC44A38-B772-47F8-A406-054F842EC7C5}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7BDAF75A-0D6F-4F50-AFE9-333D08DF4005}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"bgoomain.exe"=-
;rem YOK拦截助手
;Navsmall.dll
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1BC02872-BC5E-46BE-BA76-6B0170FE6BFE}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Filter\text/html]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{972566B2-93BF-41AA-B06D-5F81DB7E38E1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C3E2C12D-FACF-43BB-BE10-B1CDD497BFC9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C7FA2A99-D9AF-4112-B197-436016C2F72F}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F869BB38-FFEF-4589-B986-610B7AD0ADA2}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1A1798CC-9120-40B1-BA68-1D1415973232}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1E69A80B-B19A-49AD-805E-98447883BED3}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{3E42ACD2-B79D-4495-A6E5-9D972B19D815}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{871385F0-7E91-42D4-9B91-CD5611274531}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{261EE951-024F-4903-B880-ADA965E72885}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{628508EC-44AB-4990-B751-A3005D28053F}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{972566B2-93BF-41AA-B06D-5F81DB7E38E1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F869BB38-FFEF-4589-B986-610B7AD0ADA2}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SMS.SMSObject]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SMS.SMSObject.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YOKHookAdr.HttpFilter]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YOKHookAdr.HttpFilter.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YOKHookAdr.YOKBho]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YOKHookAdr.YOKBho.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YOKHookAdr.YOKBlockAdr]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YOKHookAdr.YOKBlockAdr.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Navsmall]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Yok]
[-HKEY_CURRENT_USER\Software\Yok]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar]
"{1E796980-9CC5-11D1-A83F-00C04FC99D61}"=-
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{972566B2-93BF-41AA-B06D-5F81DB7E38E1}]

;rem 不知是什么流氓
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D515F39-EBD0-0B9E-6719-2F8D8869AA61}]
[-HKEY_CLASSES_ROOT\CLSID\{8D515F39-EBD0-0B9E-6719-2F8D8869AA61}]
;rem 不知是什么流氓
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CE7C3CF0-4B15-11D1-ABED-709549C10000}]
[-HKEY_CLASSES_ROOT\CLSID\{CE7C3CF0-4B15-11D1-ABED-709549C10000}]
;rem VIPTray.exe 千橡这个** IE-BAR Desktop Media
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\BHORun.DLL]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\DelayLoad.DLL]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{65EF7AD4-1340-4A36-A097-95FF17E243E1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{84D34084-4E38-4683-A4DB-CA00646FEE8B}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BHORun.BHelper]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BHORun.BHelper.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DelayLoad.LoadRun]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DelayLoad.LoadRun.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Dmbar.dmbar]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Dmbar.dmbar.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DMBho.BrowserHelper]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{16358834-52FC-4981-9A79-BFECE7C08CD3}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1FCA37BA-7259-4BF1-878B-A39FA83BFBBB}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2D99E8F4-56B7-457B-9A92-61B5D247D263}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5A6F2F95-3191-433B-8533-EB0B596A7BAC}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F2E37336-BFDB-409B-8D0E-6F013C438B20}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{265379DB-90F0-45DB-9B10-640DCB1145FD}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{7EB718DD-E41F-446A-9C1E-757F921168A0}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{8C9377D3-D823-46A6-A8AC-B3913F9B6CA2}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{25649A6A-637D-4416-9D03-98146330492A}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{292D202F-E519-45F4-8D50-DE8513B87CE9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{86645AFC-0B33-4275-BFE6-FAE9FCD886D1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\IE-Bar]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{1FCA37BA-7259-4BF1-878B-A39FA83BFBBB}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2D99E8F4-56B7-457B-9A92-61B5D247D263}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F2E37336-BFDB-409B-8D0E-6F013C438B20}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\sharehelper]
[-HKEY_CURRENT_USER\Software\sharehelper]
[-HKEY_LOCAL_MACHINE\SOFTWARE\sharehelper]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\VIPTray]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Te1net]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Explorer Bars\{1FCA37BA-7259-4BF1-878B-A39FA83BFBBB}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
"DelayRun"=-
;rem ChajianHelper
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0CB66BA8-5E1F-4963-93D1-E1D6B78FE9A2}]
;rem HelperService.dll
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9E1E1371-9D8F-4421-81B9-F8D2E1773A59}]
;rem wmicsmgr.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"wmicsmgr"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{333872C4-92D6-4396-8542-64AB96518950}]
;SmartLinkService (SLService) - slmdmsr.exe
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SLService]
;rem 一个什么五笔
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ED8DFC5C-10EF-45AB-9DC2-0639AFF5A270}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{CBC67CD5-855C-4A69-B450-A0508FDA5234}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{C0CDC83C-FEA7-499F-9BE7-A9AB4EAED292}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Update.bho]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Update.bho.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ED8DFC5C-10EF-45AB-9DC2-0639AFF5A270}]
;rem MyWebSearch
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00A6FAF1-072E-44cf-8957-5838F569A31D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{07B18EA1-A523-4961-B6BB-170DE4475CCA}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0F8ECF4F-3646-4C3A-8881-8E138FFCAF70}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{147A976F-EEE1-4377-8EA7-4716E4CDD239}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{25560540-9571-4D7B-9389-0F166788785A}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2EFF3CF7-99C1-4c29-BC2B-68E057E22340}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3DC201FB-E9C9-499C-A11F-23C360D7C3F8}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3E720452-B472-4954-B7AA-33069EB53906}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{53CED2D0-5E9A-4761-9005-648404E6F7E5}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{63D0ED2C-B45B-4458-8B3B-60C69BBBD83C}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7473D292-B7BB-4f24-AE82-7E2CE94BB6A9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{84DA4FDF-A1CF-4195-8688-3E961F505983}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8E6F1832-9607-4440-8530-13BE7C4B1D14}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{938AA51A-996C-4884-98CE-80DD16A5C9DA}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{98D9753D-D73B-42D5-8C85-4469CDA897AB}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9AFB8248-617F-460d-9366-D71CDEDA3179}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9FF05104-B030-46FC-94B8-81276E4E27DF}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A9571378-68A1-443d-B082-284F960C6D17}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ADB01E81-3C79-4272-A0F1-7B2BE7A782DC}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B813095C-81C0-4E40-AA14-67520372B987}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C9D7BE3E-141A-4C85-8CD6-32461F3DF2C7}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CFF4CE82-3AA2-451F-9B77-7165605FB835}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D9FFFB27-D62A-4D64-8CEC-1FF006528805}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\FunWebProducts.DataControl]
[HKEY_LOCAL_MACHINE\SOFTWARE\FocusInteractive]
"{07B18EA9-A523-4961-B6BB-170DE4475CCA}"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\Outlook\Addins\MyWebSearch.OutlookAddin]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\Word\Addins\MyWebSearch.OutlookAddin]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00A6FAF1-072E-44cf-8957-5838F569A31D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{07B18EA1-A523-4961-B6BB-170DE4475CCA}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MyWebSearch Email Plugin"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{00A6FAF6-072E-44cf-8957-5838F569A31D}"=-
; rem 开心运程速递 MEobjectSDT shwasobj.dll
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4136C3F6-7636-49bf-A122-D4DA53B1ADDF}]
;rem MyIEHelper IEHelper_****.dll 这个文件名会不停的变化
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{16A770A0-0E87-4278-B748-2460D64A8386}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IEHelper.MyIEHelper]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IEHelper.MyIEHelper.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{A4BC2506-C00C-4D2E-B47F-0BB4C2C74CCF}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{2511DE40-34A3-4C6A-B1B2-C5C92A2F00BE}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{16A770A0-0E87-4278-B748-2460D64A8386}]
; rem windirected 傲迅 wmpdrm.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"spoolsv"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\wmpdrm.DLL]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0E674588-66B7-4E19-9D0E-2053B800F69F}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{4A775183-9517-420E-9A13-D3DA47BB8A84}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{8B200623-3FC5-4493-8B49-DC2AD4830AF4}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wmpdrm.cfsbho]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wmpdrm.cfsbho.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0E674588-66B7-4E19-9D0E-2053B800F69F}]
;rem ActiveBandObject.dll
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ActiveBandObject.ActiveBHO]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ActiveBandObject.ActiveBHO.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{63C55A7F-6E29-8D4F-5C76-4F850F28D13A}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{AB6EC1FC-83B0-4EF2-A128-785BAFC2A2B5}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{2F80A49B-9FA3-4FA0-A964-4689B0C1B30B}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{63C55A7F-6E29-8D4F-5C76-4F850F28D13A}]
;rem 划词搜索 deskipn.dll
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{08A312BB-5409-49FC-9347-54BB7D069AC6}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9C1CE329-606F-4C0F-8A85-9C2818878AF3}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MonitorIE.MonitorURL]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MonitorIE.MonitorURL.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{647BB013-E900-473E-BC10-99CF3AC365AD}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{08A312BB-5409-49FC-9347-54BB7D069AC6}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Desktop"=-
[-HKEY_CURRENT_USER\Software\DeskAdTop]
;WinSC.dll Luobooshow
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\SCIntruder.DLL]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{35A69597-0E2A-4100-A394-C6F6FC2535B9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0D8CA512-282E-4E3F-8970-F5EE879AF7FC}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{566CB5F7-D9FA-4B01-8A1A-168F706CBE41}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{86DC8694-AACC-4CE6-B8EC-A75DEEDA698D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9ACEEE30-143F-471A-AA45-72B061FE7D60}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C5668031-4BDE-43D4-8766-8E9AAC16C56E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DED96F80-2B97-407C-8E09-D7233448753F}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{172754B5-06E9-49D4-B1E0-7D821E23C5E8}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1B631EF9-EBD4-4828-ABB2-1AFB96E2EA4E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{36F305A9-4451-4FDF-9274-28F21E2A2F14}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B513A7FC-BC53-4077-ABE3-5BD321AF651D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{BCC53A8C-67A7-4E8F-B971-D4668D1A7423}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{C88FD25F-8D53-4E99-AEA0-18F22801CE8C}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D1F6E94E-8EA1-4EC8-914C-138BC55AE104}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\NewWebController.Intruder]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\NewWebController.Intruder.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SCIntruder.DocumentEventsHandler]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SCIntruder.DocumentEventsHandler.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SCIntruder.Magazines]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SCIntruder.Magazines.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SCIntruder.Service]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SCIntruder.Service.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SCIntruder.Settings]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SCIntruder.Settings.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SCIntruder.WindowEventsHandler]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SCIntruder.WindowEventsHandler.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{5CD75223-E010-4BE9-9027-7A53533EA4F6}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9ACEEE30-143F-471A-AA45-72B061FE7D60}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MSService_v1.0"=-
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Luobooshow"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\SCIntruder]
;rem caishow
[-HKEY_LOCAL_MACHINE\SOFTWARE\CaiShow]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\BrowerHelperMFC.DLL]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\Download.DLL]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\MMSFactory.DLL]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\MMSSend.DLL]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\ssoaddionalindical.DLL]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{18E8C855-FF2E-4BEB-B9D2-E7B25AF92A48}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{22A36E6E-07CB-4851-AA84-5FC1CA73A1DE}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{37BC804E-E26B-4D09-836F-AC15FC0C253E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{88ABD365-12AE-44E7-8450-DA5C3653325B}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{F375F726-23D3-4179-9CA2-54FE6E490879}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{FBB4D7BA-CCD3-457D-BEFF-F3B1757BD6B1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BrowerHelperMFC.CaiShowBH]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BrowerHelperMFC.CaiShowBH.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance\{3C78B8E2-6C4D-11D1-ADE2-0000F8754B99}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0E6E0B51-0300-4AE2-B6C4-F4EFE33A33B2}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32F64094-A155-4554-8753-E5E267A8C002}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3AF40CB8-B3BA-4E2D-8968-4BF8DB172997}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3C78B8E2-6C4D-11D1-ADE2-0000F8754B99}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5673A7C0-95CC-4646-BB07-3BD71234CEF9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6ABB6C58-FEB7-43AE-946A-AF05D074F493}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DD6C4862-4BF9-48CE-BD27-9838E30D3DD5}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Download.Download]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Download.Download.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{315420B2-E5C8-4E7B-B812-6676BA4F30CE}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6CA6DE10-8705-4E1B-9117-BCFA5BECE14B}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{CE98AD53-16F1-48D3-9208-1203AA19F77E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D32D8A55-A21A-4237-B8BB-5A5EBEE6746D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{DBD14208-5F2F-40B8-8D97-6DE44C1D2E3D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{F6CE85C8-99E7-49F5-A1A2-03FFC4FF09A5}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MMSFactory.Send]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MMSFactory.Send.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MMSSend.Send]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MMSSend.Send.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\My.NetAccelerate]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ssoaddionalindical.Identify]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ssoaddionalindical.Identify.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{1F805A43-0E95-4245-8EAF-9271D520722A}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{73D53D7B-66DF-419B-9B44-CF3F42ADF5C9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{864F198D-6568-4686-B4F5-4A970B85E58B}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{89A99589-82B0-4983-A882-E8D8DB3DA5C7}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{CEBE027D-5423-41B8-AF51-9F1C22557CC6}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{D0581D47-E3CB-402D-B8A6-5F8561B2A36C}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3AF40CB8-B3BA-4E2D-8968-4BF8DB172997}]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\用炫彩图铃发送该图片]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"caishowmanage"=-
;rem 酷桌面 Letscool.exe CoolBho.dll
[-HKEY_LOCAL_MACHINE\SOFTWARE\LetsCool]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\Letscool.exe]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"LetsCool"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"LetsCool"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F0C15012-7DBD-4068-95A2-0A82DB03AC35}]
;rem Schedule sscli.dll
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\At.Helper]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\At.Helper.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8B316DA1-9950-4926-B9EA-1AEC124AFA45}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8B316DA1-9950-4926-B9EA-1AEC124AFA45}]
;rem 青娱
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\*\shellex\ContextMenuHandlers\QylUpload]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance\{EB86A239-96D9-4F34-BCCD-E1E13D09577B}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2236FAB7-7BDD-4187-831B-C7D809CA2E24}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{53AE3F49-4985-4245-9AFE-2D3A14DCF7CD}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{81B5C8FE-07BD-4020-B299-79C0BE1A3946}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E70FE57A-19AA-4A4C-B39A-408D49D73851}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EB86A239-96D9-4F34-BCCD-E1E13D09577B}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EC987C58-81A2-4d2c-993D-D0E1945D7E7C}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F349A88E-33CF-46E7-8091-6EF28491168D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Contextmenu.Upload]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Contextmenu.Upload.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{0775F38B-6CF8-40B1-9A9D-43E6BFF4660D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{60F02175-7F65-4F3B-AC6B-CB842B921ECD}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{82044DF3-E304-4034-B16D-2D5A83979744}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{A188D411-8ED2-487E-9D25-2EACA8330956}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{A32C5A11-AA68-4D61-8217-0953F704D3CA}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{BDD8A4E1-B6EE-4C4E-B6DA-0A1E627477DD}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{E9DC930A-4AC3-4EED-98AB-E2097EDBACE9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\QYULE.RMPLAYER]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\QYULE.WMPLAYER.9]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\QYULEPLAYER.QyulePlayerCtrl.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{72DB4BF2-6C70-4297-857C-4B2D9E1F452C}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{8F3B47E6-31BA-4089-8C23-683526E67984}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{905AA0BA-A402-4F56-9E39-3817EDD89786}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{9AD54178-E7AE-4528-A79D-48D7E79202EE}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ClientQyule"=-
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ClientQyule"=-
[-HKEY_CURRENT_USER\Software\Qyule]
[-HKEY_CURRENT_USER\Software\SmartClient]
;kuaiso toolsbar
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6D53ADB7-6AD5-4A59-BFE4-7B57D2F4AA89}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B07D1F6B-6B8C-4904-8EE8-5E5A2B4624B3}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{D57DF8CF-66B7-412C-A7D1-64B5F5F7FE27}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ToolBand.XBTP03129]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ToolBand.XBTP03129.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\XBTB03129.IEToolbar]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\XBTB03129.IEToolbar.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\XBTB03129.XBTB03129]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\XBTB03129.XBTB03129.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{6D53ADB7-6AD5-4A59-BFE4-7B57D2F4AA89}"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B07D1F6B-6B8C-4904-8EE8-5E5A2B4624B3}]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser]
"{6D53ADB7-6AD5-4A59-BFE4-7B57D2F4AA89}"=-
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{6D53ADB7-6AD5-4A59-BFE4-7B57D2F4AA89}"=-
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{6D53ADB7-6AD5-4A59-BFE4-7B57D2F4AA89}]
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B07D1F6B-6B8C-4904-8EE8-5E5A2B4624B3}]
[-HKEY_CURRENT_USER\Software\XBTB03129]
;rem bbmao
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6AE02E1C-8859-4F57-9097-5A55A56A4CAF}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72BA415A-AE03-4279-ACAB-39A3DF73FD4E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{68A7C985-87D6-4635-B498-3290613C718E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ToolBand.XBTP05676]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ToolBand.XBTP05676.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\XBTB05676.IEToolbar]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\XBTB05676.IEToolbar.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\XBTB05676.XBTB05676]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\XBTB05676.XBTB05676.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{6AE02E1C-8859-4F57-9097-5A55A56A4CAF}"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72BA415A-AE03-4279-ACAB-39A3DF73FD4E}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\Post Platform]
"bbmao Toolbar"=-
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser]
"{6AE02E1C-8859-4F57-9097-5A55A56A4CAF}"=-
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{6AE02E1C-8859-4F57-9097-5A55A56A4CAF}]
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{72BA415A-AE03-4279-ACAB-39A3DF73FD4E}]
[-HKEY_CURRENT_USER\Software\bbmao]
[-HKEY_CURRENT_USER\Software\XBTB05676]
;rem NB46 smflash.ocx 好像需要安全模式
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1A50BDD0-01A6-4D58-958B-B9BC66789327}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{56E88004-7AF8-474C-BB30-76E0B7B2B003}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{A09B9056-F52E-413F-AE1D-5371DFE0D7B9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\NB46Toolbar.CoNB46BHO]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{F3E2C17E-E43F-4AD8-9232-15F33F95E044}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1A50BDD0-01A6-4D58-958B-B9BC66789327}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{14A21378-5BB1-4BC4-95D5-5D3F51527F6F}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{14A21378-5BB1-4BC4-95D5-5D3F51527F6F}]

下载文件 下载此文件